CERTIFICATE_VALIDATION_HAS_FAILED "Public key in CSR and server certificate are not matching"
search cancel

CERTIFICATE_VALIDATION_HAS_FAILED "Public key in CSR and server certificate are not matching"

book

Article ID: 410363

calendar_today

Updated On:

Products

VMware SDDC Manager

Issue/Introduction

When Importing a Certificates in SDDC that has been signed by an external Certificate authority validations fails with: 

Validation failed! Could not import. Check information below and try again. 

{"code":"CERTIFICATE_VALIDATION_HAS_FAILED","args":["FQDN","Public key in CSR and server certificate are not matching,"]}

 

Environment

VCF 5.x 

Cause

The reported issue is due to private key stored in SDDC DB not match with the generated certificate.

The certificate was generated from an older CSR.

Resolution

For Generating a new certificate to install into SDDC Manager, the private key associated with the newly generated CSR is needed to create a valid Certificate that matches the private Key that SDDC manager has stored.

Please see documentation for steps on CSR generation in SDDC Manager: 

https://techdocs.broadcom.com/us/en/vmware-cis/vcf/vcf-5-2-and-earlier/5-2/map-for-administering-vcf-5-2/certificate-management-admin/install-third-party-ca-signed-certificates-using-server-certificate-and-certificate-authority-files-admin.html